Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'G54vXZM5BY9bT0' = '%ALLUSERSPROFILE%\NnfBk2oexTiM6\4rJmXbJrkvziRHG.exe'
- %ALLUSERSPROFILE%\NnfBk2oexTiM6\4rJmXbJrkvziRHG.exe
- %TEMP%\BJmqHZwg.exe
- %ALLUSERSPROFILE%\NnfBk2oexTiM6\RCX1.tmp
- %ALLUSERSPROFILE%\NnfBk2oexTiM6\4rJmXbJrkvziRHG.exe
- %TEMP%\BJmqHZwg.exe
- %ALLUSERSPROFILE%\NnfBk2oexTiM6\4rJmXbJrkvziRHG.exe
- ClassName: 'Indicator' WindowName: ''